AGENDA: DAY III
WEDNESDAY, MARCH 24, 2021
DAY III MORNING MINI SUMMITS
MINI SUMMITS ROUND III: 10:00 am – 11:00 am EDT
Mini Summit 10: Workforce Training: HIPAA Security Basics
10:00 am EDT
Introduction and Discussion
John C. Parmigiani
President, John C. Parmigiani and Associates, LLC, HIPAA Summit Distinguished Service Award Winner, Former Director of Enterprise Standards, HCFA, Ellicott City, MD
President, John C. Parmigiani and Associates, LLC, HIPAA Summit Distinguished Service Award Winner, Former Director of Enterprise Standards, HCFA, Ellicott City, MD
John Parmigiani is President of John C. Parmigiani & Associates, LLC with a primary focus on helping healthcare organizations become compliant with healthcare regulations, in particular HIPAA, and achieve e-health. With over 40 years in information systems management in both the public and private sectors and as the former HCFA (now CMS) Director of Enterprise Standards, he was the Chairman of the government-wide HIPAA Administrative Simplification Security and Electronic Signature Standards Implementation Team and part of the federal committee that oversaw the development and implementation of the Transaction and Code Sets and the Privacy Rule. More information at www.johnparmigiani.com.
Mini-Summit 11: Incident Response Guidance: How to Respond Practically and Legally
10:00 am EDT
Introductions and Panel Discussion
Lee Kim, JD
Director of Privacy & Security, HIMSS, Member, Analytic Exchange Program, US Department of Homeland Security and National Visiting Committee, National Cybersecurity Training & Education Center (NCYTE), Washington, DC
Director of Privacy & Security, HIMSS, Member, Analytic Exchange Program, US Department of Homeland Security and National Visiting Committee, National Cybersecurity Training & Education Center (NCYTE), Washington, DC
Lee Kim is the Director of Thought Advisory at the Healthcare Information and Management Systems Society. Lee serves as an analyst with the United States Department of Homeland Security Analytic Exchange Program (AEP). Lee is as a member of the National Cybersecurity Training & Education Center National Visiting Committee. Lee is a licensed attorney and registered patent attorney. Lee is an AV Preeminent peer review rated attorney. Lee also holds cybersecurity and information privacy certifications: CISSP and CIPP/US.
Iliana Peters,JD, LLM, CISSP
Shareholder, Polsinelli, PC, Former Acting Deputy Director, Health Information Privacy, Office for Civil Rights, US Department of Health and Human Services, Washington, DC (Co-chair)
Shareholder, Polsinelli, PC, Former Acting Deputy Director, Health Information Privacy, Office for Civil Rights, US Department of Health and Human Services, Washington, DC (Co-chair)
Iliana L. Peters is recognized by the health care industry as a preeminent thinker and speaker on data privacy and security, particularly with regard to HIPAA, the HITECH Act, the 21st Century Cures Act, the Genetic Information Nondiscrimination Act (GINA), the Privacy Act, and emerging cyber threats to health data. For over a decade, she both developed health information privacy and security policy, including on emerging technologies and cyber threats, for the Department of Health and Human Services, and enforced HIPAA regulations through spearheading multi-million dollar settlement agreements and civil money penalties pursuant to HIPAA. Iliana also focused on training individuals in both the private and public sector, including compliance investigators, auditors, and State Attorneys General, on HIPAA regulations and policy, and on good data privacy and security practices. As a CISSP, Iliana works hard to bridge the gap between legal requirements for the security of health data and security industry best practices, so that clients can better understand data security issues and jargon.
Mini-Summit 12: CMS Update on Interoperability and Patient Access & Unique Challenges Posed by Neurotechnologies
Part I: CMS Update on Interoperability and Patient Access for Medicare Advantage Organization and Medicaid Managed Care Plans, State Medicaid Agencies, CHIP Agencies and CHIP Managed Care Entities, Issuers of Qualified Health Plans on the Federally-Facilitated Exchanges, and Health Care Providers
10:00 am EDT
Introduction and Discussion
Alexandra Mugge, MPH
Deputy Chief Health Informatics Officer, Director of the Health Informatics and Interoperability Group, Centers for Medicare & Medicaid Services, US Department of Health and Human Services, Baltimore, MD
Deputy Chief Health Informatics Officer, Director of the Health Informatics and Interoperability Group, Centers for Medicare & Medicaid Services, US Department of Health and Human Services, Baltimore, MD
Alexandra Mugge is the Deputy Chief Health Informatics Officer and Director of the Health Informatics and Interoperability Group (HIIG) at CMS, where she and her team have led the interoperability and health IT efforts for CMS since2018. Before leading CMS’ interoperability efforts in her current role, Alex served as the Deputy Director of the Division of Health IT in the Center for Clinical Standards and Quality (CCSQ) where her team lead the overhaul of the Meaningful Use Programsto create the Promoting Interoperability initiatives. Alex has broad experience analyzing trends, monitoring, and evaluating health care initiatives to promote better access to health information and support value-based care.
Part II: Addressing Consumer-Generated Health Information & the Unique Challenges Posed by Neurotechnologies
10:30 am EDT
Introduction and Discussion
Jeremy Greenberg, JD
Policy Counsel, Future of Privacy Forum, Washington, DC
Policy Counsel, Future of Privacy Forum, Washington, DC
Jeremy Greenberg is a Policy Counsel with Future of Privacy Forum (FPF) where he works to promote responsible data use in emerging technology. Prior to that, Jeremy served as a Policy Fellow with FPF where he worked on issues around privacy legislation, artificial intelligence, and advertising technology. Before joining FPF, Jeremy was a Law Clerk in the Office of U.S. Senator Ed Markey where he focused on a number of telecom and privacy items.
Katelyn Ringrose, JD
Christopher Wolf Diversity Law Fellow, Future of Privacy Forum, Washington, DC
Christopher Wolf Diversity Law Fellow, Future of Privacy Forum, Washington, DC
Katelyn Ringrose currently serves as the Christopher Wolf Diversity Law Fellow at the Future of Privacy Forum within the organization’s Health and Genetic Privacy Team. Katelyn is a graduate of the University of Notre Dame Law School, and has published numerous academic articles on the impacts of facial recognition and body-worn cameras, government surveillance, and data collection in schools. In the tech policy space, Katelyn works at the intersections of health and genetics, consumer protection, and emerging technologies. As an IEEE Brain contributor, Katelyn looks forward to creating legal, ethical, and social guidelines for developers of brain-computer interfaces.
Mini Summit 13: Overview of Risks and Controls for Securing PHI with a Remote Workforce
10:00 am EDT
Introduction and Discussion
Steve Miller, JD
Chief Compliance Officer, Capital Health System, Trenton, NJ
Chief Compliance Officer, Capital Health System, Trenton, NJ
Stephen Miller is Chief Compliance and Privacy Officer for Capital Health, a not-for-profit integrated healthcare delivery system serving New Jersey and Eastern Pennsylvania. Mr. Miller also directs Capital Health’s internal audit function. Mr. Miller has served as Lecturer on the faculty of The Pennsylvania State University where he instructed undergraduate and professional development students on the subject of health care law. He is a frequent speaker and author on corporate compliance in the healthcare industry.
Debra Muscio, MBA, CFE, CCE, CHC, CHP, CHIAP
SVP, Chief Audit, ERM, Privacy, Information Security, Ethics & Compliance Officer, Community Medical Centers, Clovis, CA
SVP, Chief Audit, ERM, Privacy, Information Security, Ethics & Compliance Officer, Community Medical Centers, Clovis, CA
Debra Muscio is a nationally recognizedleader with over 38 years experiencein audit and compliance. Debra’s professional experience includes responsibilities for startup, implementations and maintaining Internal Audit and Compliance including Privacy and Information Security Offices in Healthcare Systems. She has utilized modelsof staffing and co-sourcing arrangements, which includes areas of operational, financial, compliance and information technology.Debrais a fellow of Health Ethics Trust, has servedon committees of AHIA and HCCA, and has led two Healthcare systems to become Certified Compliance Programs through Health Ethics Trust.
Andrew Rodriguez, MSHI, CHPS, HCISPP, CHPC
Privacy and information Security Officer, Shriners Hospital for Children, Tampa, Florida
Privacy and information Security Officer, Shriners Hospital for Children, Tampa, Florida
Daniel Fabbri, MS, PhD
Assistant Professor, Biomedical Informatics & Computer Science, Vanderbilt University, Founder and Chief Executive Officer, Maize Analytics, Inc., Nashville, TN (Moderator)
Assistant Professor, Biomedical Informatics & Computer Science, Vanderbilt University, Founder and Chief Executive Officer, Maize Analytics, Inc., Nashville, TN (Moderator)
Daniel Fabbri, Ph.D., is the Founder and CEO of Maize Analytics, as well as an Assistant Professor of Biomedical Informatics and Computer Science at Vanderbilt University. His research focuses on machine learning applied to electronic medical records, clinical data, and data privacy. Dr. Fabbri’s research has been sponsored by the National Science Foundation, National Institutes of Health, and the U.S. Department of Defense. His research on machine learning in healthcare and data privacy has been published in JAMA Internal Medicine, the Journal of the American Medical Informatics Association, Journal of Pediatrics, International Journal of Medical Informatics, and multiple other computer science proceedings.